New Windows Attacks Outsmart Anti-virus

According to The Register, “Researchers say they’ve devised a way to bypass protections built in to dozens of the most popular desktop anti-virus products, including those offered by McAfee, Trend Micro, AVG, and BitDefender. The method, developed by software security researchers at matousec.com, works by exploiting the driver hooks the anti-virus programs bury deep inside the Windows operating system. In essence, it works by sending them a sample of benign code that passes their security checks and then, before it’s executed, swaps it out with a malicious payload.”

56 Comments

  1. 2010-05-09 5:56 am
    • 2010-05-09 9:18 am
      • 2010-05-09 10:14 pm
        • 2010-05-10 7:39 am
      • 2010-05-11 3:12 pm
  2. 2010-05-09 8:41 am
    • 2010-05-09 9:16 am
      • 2010-05-09 9:49 am
  3. 2010-05-09 10:02 am
    • 2010-05-09 10:06 am
      • 2010-05-09 10:24 am
      • 2010-05-09 11:30 am
  4. 2010-05-09 10:48 am
    • 2010-05-09 11:08 am
      • 2010-05-09 11:47 am
        • 2010-05-09 12:04 pm
        • 2010-05-09 12:30 pm
          • 2010-05-09 12:53 pm
          • 2010-05-09 1:34 pm
          • 2010-05-09 4:10 pm
          • 2010-05-09 11:22 pm
    • 2010-05-09 11:41 am
      • 2010-05-09 11:50 am
        • 2010-05-09 11:55 am
          • 2010-05-09 12:19 pm
          • 2010-05-09 12:44 pm
          • 2010-05-09 1:28 pm
      • 2010-05-09 11:52 am
        • 2010-05-09 2:18 pm
          • 2010-05-09 11:46 pm
        • 2010-05-09 2:42 pm
          • 2010-05-09 2:50 pm
          • 2010-05-09 3:07 pm
          • 2010-05-09 4:10 pm
          • 2010-05-10 5:13 am
          • 2010-05-09 11:37 pm
          • 2010-05-09 11:08 pm
          • 2010-05-10 5:19 am
          • 2010-05-10 10:38 am
      • 2010-05-09 11:55 pm
        • 2010-05-10 5:20 am
          • 2010-05-10 9:27 pm
  5. 2010-05-09 12:24 pm
    • 2010-05-09 2:49 pm
      • 2010-05-09 4:45 pm
        • 2010-05-10 5:08 am
  6. 2010-05-10 1:02 am
  7. 2010-05-10 5:06 pm
    • 2010-05-10 11:39 pm
      • 2010-05-11 1:09 am
  8. 2010-05-10 6:40 pm
  9. 2010-05-11 2:48 pm